/^CONTROlT^\ 
/ INSTRUCTION Y/~ 
I USER INTERFACE / 

\OTERATIONS^/ 



170 



154 



NETWORK STATE 
INFORMATION 



152 



I 



1 



PAST DATA FORWARDING 
DEVICE (e.g., ROUTER) 
CONFIGURATION 
INFORMATION 



DATA FORWARDING 
DEVICE (e.g., ROUTER) 
CONFIGURATION 
INFORMATION 





160 



PATH-TO-FORWARDING INFORMATION 
TRANSLATION OPERATION 




DATA ^\ f 
( FORWARDING V 
\OPERATIONy 

100 

FIGURE 1 



110 



CONTROL 
INSTRUCTION INTERFACE OPERATIONS 



170" 



BUFFER OF RECENTLY 
EXECUTED CONTROL 
INTRUCTIONS 




CONTROL 
INSTRUCTION EDIT 
OPERATIONS 




271 






— r-r~ 


230 -\ 240 _^ 250 


FORWARDING 
TABLE 


^^/INTERFACEN^^ ASICs CHASSIS 
^~\^PERATIONy^^ ' 1 ^V^OPERATION/ 


DATA FORWARDING FACILITY ^^^tCRO) KERNEL>»> 



200 

FIGURE 2 



220 



210 




CHANGES TO 
(ROUTER) 
CONFIGURATION 
INFORMATION 



FIGURE 3 




410 



420 



PERMIT USER WITH APPROPRIATE 
PERMISSIONS TO LOAD PRE-EXISTING 
CONFIGURATION INFORMATION, VIEW 
AND NAVIGATE THROUGH THE 
CANDIDATE CONFIGURATION, TO 
CHANGE, ADD, AND TEST 
STATEMENTS AND PARAMETERS, TO 
COMPARE SETS OF CONFIGURATION 
INFORMATION, AND TO CHANGE AND 
ADD COMMENTS 



415 



v] DENY ACCESS; 
' LOG DENIAL 



440 



450 




460 



commit?;;:*-^ 



1 



YES 



CHECK FOR PROPER SYNTAX 



470 




YES 



NOTIFY USER 
OF ERROR(S) 



ACTIVATE CANDIDATE 
CONFIGURATION AND 
MARK AS CURRENT, 
ACTIVE CONFIGURATION 



475 



480 



FIGURE 4 



( RETURN 



490 



COMPARE 
CONFIGURATION 
METHOD 



310c' 



ACCEPT PRESENT CANDIDATE 
(ROUTER) CONFIGURATION 
INFORMATION 



I 



510 



NO 



A \ 
' PARTICULAR PAST " 

(ROUTER) 

^ CONFIGURATION 

CHOSEN? 



520 



YES 



ACCEPT DEFAULT (MOST 
RECENTLY COMMITED) 
(ROUTER) CONFIGURATION 
INFORMATION 



530 



540 



ACCEPT CHOSEN 

(ROUTER) 
CONFIGURATION 
INFORMATION 



I 



DETERMINE HIERARCHICAL 
CONFIGURATION LEVEL IN 
PRESENT CANDIDATE 
CONFIGURATION INFORMATION 



550 





COMPARE PRESENT CANDIDATE 
INFORMATION WITH ACCEPTED ONE OF THE 
DEFAULT OR CHOSEN COMMITED (ROUTER) 
CONFIGURATION INFORMATION (FROM THE 
DETERMINED HIERARCHICAL LEVEL, DOWN 
WITHIN PRESENT CATEGORY) 



PRINT, DISPLAY, AND/OR 
SAVE COMPARISON RESULTS 



580 



( RETURN 



590 



FIGURE 5 



ROUTER CONFIGURATION FILE 




605 


i fWAQQIQ PHMFIf^l iRATIONI 
[ v^riMooio uUiNnvjurvM iwin 

i 


"1 

i 
l 

.1 






- 610 


1 

! CLASS-OF-SERVICE CONFIGURATION 

1 

1 


"i 

y 

i 






- 615 


i FIREWALL CONFIGURATION 


i 
■ 

.i 






- 620 


i FORWARDING-OPTIONS CONFIGURATION 


i 

i 

.i 






625 


j GROUPS CONFIGURATION 


i 
i 

_i 






uou 


j INTERFACES CONFIGURATION 


y 

i 








J POLICY-OPTIONS CONFIGURATION 


1 
I 
1 






OHU 


j PROTOCOLS CONFIGURATION 


I 

I 
i 








j ROUTING-INSTANCES CONFIGURATION 










j ROUTING-OPTIONS CONFIGURATION 


Y 






DOO 


i SNMP CONFIGURATION 


i 
i 






— 660 


j SYSTEM CONFIGURATION 


V 

t 
i 









152" 



FIGURE 6 



III 



a: 
> 



Q < 
GO CO 



Q_ 

> 
CO 



a: a: 
hi lu 

^£ 
o o 
a: co 



CL 

a: 




CO 
CO 

CL 

CD 

CL 

o 



CL 

> 
Q 



CO 



a 

LU 



o 
o 

CL 

o 

CD 







Pl 






TRACE 
OPTIONS 







VIRTUAL 
LINK 








STUB 







L 








AREA 
RANGE 





Ol 



o 

CO 

M 



o 

CD 



UJ 

D 
CD 

LL 



01 
M 



[edit chassis] Hierarchy Level 



chassis { 
alarm { 

interface-type { 

alarm-name (red | yellow | ignore); 

} 

} 

filter-check days; 
fpc slot-number { 
pic pic-number { 

framing (sdh j sonet); 

no-concatenate; 

} 

} 

(no-source-route | source-route); 
redundancy { 

routing-engine slot-number (master | backup | disabled ); 
ssb slot-number (always | preferred); 

} 

} # End of [edit chassis] hierarchy level 
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[edit class~of~service] Hierarchy Level 



dass-of-service { 
input { 
fpc fpc-number { 

precedence-map map-name; 

} 

interfaces { 
interface-name { 
inet-precedence-map; 
mpls-cos-map; 
unit unit-number { 

output-queue queue-number, 

} 

) 

} 

precedence-map map-name { 
bits precedence-bit output-queue queue-number; 

} 

> 

output { 

drop-profile profile-name { 
stream-profile { 

fill-levei fill-percentage drop-probability probability-percentage; 

} 

plp-set-queue-profile { 
fill-level fill-percentage drop-probability probability-percentage; 

} 

plp-clear-queue-profiie { 
fill-level fill-percentage drop-probability probability-percentage; 

) 

) 

fpc fpc-number{ 

drop-profile profile-name; 

} 

interfaces { 

interface-name { 
transmit-queues { 

output-queue queue-number bandwidth percentage; 

) 

weighted-round-robin { 

output-queue queue-number weight percentage; 

} 

unit unit-number { 
precedence-rewrite { 
output-queue queue-number { 

pip-clear rewrite-bits precedence-bit; 
pip-set rewrite-bits precedence-bit, 

) 

} 

} 

) 

> 

) 

policy { 
class class-name { 
classification-override { 

output-queue queue-number; 

} 

} 

} 

} # End of [edit ciass-of-servicej hierarchy level 
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[edit firewall] Hierarchy Level 



firewall { 
filter filter-name { 
term term-name { 
from { 

match-conditions ; 

} 

then { 
action ; 

action-modifiers; 

} 

} 

} 

} # End of [edit firewall] hierarchy level 
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[edit forwarding-options] Hierarchy Level 



forwarding-options { 
sampling { 
disable; 
input { 
family inet { 
rate number; 
run-length number; 

} 



output { 
cflowd hostname { 
engine-id idnumber; 
(local-dump | no-local-dump); 
port portnumber; 
version format; 

> 

file { 

filename filename; 
files number, 
size bytes; 
(stamp | no-stamp); 
(world-readable | no-worid-readable); 

} 



traceoptions { 
file filename { 
files number; 
size bytes; 

(world-readable | no-world-readable); 

} 

} 

} 

} #End of [edit forwarding-options] hierarchy level 




[edit groups] Hierarchy Level 

groups { 

group-name { 

configuration-data; 

} 

} #End of [edit groups] hierarchy level 
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[edit interfaces] Hierarchy Level 



interfaces { 
traceoptions { 

file filename <size size> <files number>; 

) 

interface-name { 
disable; 
atm-options { 
vpi vpi-identifter max-vcs vcs-value; 
ifmi; 

} 

clocking clock-source; 
dee; 

description text; 
el-options { 
fcs (32 | 16); 

framing (g704 | unframed); 
tdle-cycle-fiag (flags | ones); 
loopback (local | remote); 
start-end-flag (shared j filler); 
timeslots slot-number; 

} 

e3-options { 

bert-algorithm algorithm; 
bert-error-rate rate; 
bert-period seconds; 
compatibility-mode (digital-link | kentrox); 
fcs (32 | 16); 
idle-cycle-flag value; 
loopback (local J remote); 
(payload-scrambier | no-payload-scrambler); 
start-end-flag value; 

} 

encapsulation type; 
fastether-options { 

(loopback | no-loopback); 

source-address-filter { 
mac-address; 

} 

(source-filtering | no-source-filtering); 

} 

gigether-options { 
flow-control; 

(loopback | no-ioopback); 
source-address-filter { 
mac-address; 

} 

(source-filtering j no-source-filtering); 

} 

hold-time seconds; 
link-mode mode; 
mac mac-address; 
mtu bytes; 
no-keepalives; 
no-traps; 
receive-bucket { 

overflow (tag | discard); 

rate speed; 

threshold number; 

} 
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sonet-opttons { 
aps { 

advertise-interval milliseconds; 
authentication-key key; 
force; 

hold-time milliseconds; 
lockout; 

neighbor address; 
paired-group group-name; 
protect-circuit group-name; 
request; 

revert-time seconds; 
working-circuit group-name; 

} 

bytes { 

el-quiet value; 
fl value; 
f2 value; 
si value; 
z3 value; 
z4 value; 

} 

fcs (32 | 16); 

loopback (local | remote); 

path-trace trace-string; 

(payload-scrambler | no-payload-scrambier); 

rfc-2615; 

(zO-increment | no-zO-increment); 



speed (10m 1 100m); 
tl-opttons { 

buildout (0-133 j 133-266 | 266-399 j 399-532 | 532-655); 

byte-encoding (nx64 | nx56); 

fcs (32 | 16); 

framing (sf | esf); 

idle-cycie-flags (flags | ones); 

invert-data; 

line-encoding (ami | b8zs); 
loopback (local | remote); 
start-end-flag (shared | filler); 
timeslots slot-number; 



t3-options { 

bert-algorithm algorithm ; 
bert-error-rate rate; 
bert-period seconds; 
(cbit-parity | no-cbit-panty); 

compattbtlity-mode (digital-link | kentrox | larscom) <subrate value: 
fcs (32 | 16); 

(feac-loop-respond | no-feac-ioop-respond); 
idle-cycle-flag value; 
(long-buildout | no-long-buiidout); 
loopback (local | remote); 
(payload-scrambler | no-payload-scrambler); 
start-end-flag value; 



traceoptions { 

flag flag <flag-modifier> <disable>; 



transmit-bucket { 

overflow (tag | discard); 
rate speed; 
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threshold number; 

} 

vlan-tagging; 

unit logical-unit-number { 

disable; 

dici identifier; 

encapsulation type; 

inverse-arp; 

multicast-dlci dlchidentifier; 

multicast-vci vpi-identifien vcl-identifler ; 

multipoint; 

no-traps; 

oam-liveness { 

up-count cells; 

down-count ce//s; 

} 

oam-period seconds ; 
point-to-point; 
shaping { 

{cbr rate | vbr peak rate sustained rate burst length); 
queue-length number; 

) 

tunnel { 

source address; 
destination address; 
ttl number; 

} 

vci vpi-identifier.vci-identifier ; 
vlan-id number; 
family family { 
filter { 

input filter-name; 

output filter-name ; 

grou p filter-group-number ; 

} 

mtu size; 
multicasts-oniy; 
no-redirects; 
primary; 

address address { 
arp ip-addres$ mac mac-address <publish>; 
destination address; 
broadcast address; 

multipoint-destination destination-address (dlci dici-identtfter | vci vci-identifier); 
multipoint-destination destination-address { 
inverse-arp; 
oam-liveness { 
up-count cells; 
down-count cells; 

} 

oam-period seconds; 
shaping { 

(cbr rate | vbr peak rate sustained rate burst length); 
queue-length number; 

} 

vci vpi-identifier. vci-identifier; 

} 

primary; 
preferred; 
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vrrp-group group-number { 
virtual-address [ addresses ]; 
priority number; 
advertise-interval seconds; 
authentication-type authentication ; 
authenticatfon-key key; 
(preempt | no-preempt); 
track { 

interface interface-name priority-cost cost; 

> 



} # End of [edit interfaces] hierarchy level 



} 



} 
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[edit policy~options] Hierarchy Level 



policy-options { 
as-path name regular-expression; 
community name members [ community-ids ]; 
damping name { 
disable; 

half-life minutes; 
max-suppress minutes; 
reuse number; 
suppress number; 

} 

policy-statement policy-name { 
term term-name { 
from { 

match-conditions; 

route-filter destination-prefix match-type <actions>; 
prefix-list name; 

} 

to{ 

match-conditions ; 

} 

then actions; 

} 

} 

prefix-list name { 
ip-addresses; 

} 

} # End of [edit policy-options] hierarchy level 




[edit protocols] Hierarchy Level 



protocols { 



BGP 



bgp{ 



advertise-inactive; 
authentication-key key; 
cluster cluster-identifier; 
damping; 

description text-description; 
disable; 

export [policy-name]; 
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family inet { 

(any | unicast | multicast) { 
prefix-limit { 
maximum number, 
teardown <percentage>; 

> 

} 

} 

hold-time seconds; 

import [policy-name]; 

keep (all | none); 

local-address address; 

focal-as autonomous-system <private>; 

I ocal-preference local-preference ; 

log-updown; 

metric-out metric; 

multihop <ttl-value>; 

no-aggregator-id; 

no-client-reflect; 

out-delay seconds; 

passive; 

path-selection (cisco-non-deterministic | always-compare-med); 

peer-as autonomous-system; 

preference preference; 

remove-private; 

traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(world-readable | no-wortd-readable)>; 
flag flag <flag-modifier> <disable>; 



group group-name { 
advertise-inactive; 
allow [network/ masklen]; 
authentication-key key; 
cluster cluster-identifier; 
damping; 

description text-description; 
export [policy-name]; 
family met { 

(any | unicast | multicast) { 
prefix-limit { 

maximum number; 
teardown <percentage>; 

} 

} 

} 

hold-time seconds; 

import [policy-name]; 

keep (all | none); 

local-address address; 

locai-as autonomous-system <private>; 

local-preference local-preference ; 

log-updown; 

metric-out metric; 

multihop <ttl-value>; 

multipath; 

no-aggregator-id; 

no-client-reflect; 

out-delay seconds; 

passive; 

peer-as autonomous-system; 



> 
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preference preference; 
protocol protocol; 
remove-private; 
traceoptions { 

file name <replace> <size $ize> <files number> <no-stamp> 

<(world-readable | no-world-readable)>; 
flag flag <flag-modifier> <disable>; 

} 

type type; 
neighbor address { 

advertise-inactive; 

authentication-key key; 

cluster cluster-identifier; 

damping; 

description text-description; 
export [poiicy-name); 
family met { 

(any | unicast | multicast) { 
prefix-limit { 
maximum number; 
teardown <percentage>; 

} 

} 

} 

hold-time seconds; 

import policy-name; 

keep (all | none); 

local-address address; 

local-as autonomous-system <private>; 

local-preference local-preference ; 

log-updown; 

metric-out metric; 

multihop <ttl-value>; 

multipath; 

no-aggregator-id; 

no-client-reflect; 

out-delay seconds; 

passive; 

peer-as autonomous-system; 
preference preference; 
protocol protocol; 
traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(worid-readable | no-worid-readable)>; 
flag flag <flag-modifier> <disable>; 

} 

} 

} 

} # End of [edit protocols bgp] hierarchy level 
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Connections connections { 

interface-switch connection-name { 
interface interface-name, unit-number; 
interface interface-name, unit-number, 

} 

(sp-switch connection-name { 
transmit-lsp label-switched-path; 
receive-isp iabei-switched-path; 

} 

remote-interface-switch connection-name { 
interface interface-name. unit-number; 
tra n sm it-Isp iabei-switched-path ; 
receive-isp Iabei-switched-path ; 

} 

} # End of [edit protocols connections] hierarchy level 

DVMRP dvmrp { 

disable; 

export [ poiicy-names ]; 
import [ policy-names ]; 
ri b-grou p group-name ; 
traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(world-readab!e | no-world-readable)>; 
flag flag <f!ag-modtfter> <disable>; 

} 

interface interface-name { 
disable; 

hold-time seconds; 
metric metric; 

) 

} # End of [edit protocols dvmrp] hierarchy level 

IGMP igmp { 

traceoptions { 

file name <replace> <size size> <fi!es number> <no-stamp> 

<(wor!d-readable | no-world-readable)>; 
flag flag <flag-modifier> <disabie>; 

} 

query-interval seconds; 
query-last-member-interva! seconds; 
query-response-interval seconds; 
robust-count seconds; 
interface interface-name { 
disable; 

version seconds; 

} 

} # End of [edit protocols igmp] hierarchy level 

IS-IS isis { 

disable; 

authentication-key key, 
authentication-type authentication ; 
export [ policy-names ]; 
level level-number { 

authentication-key key; 

authentication-type authentication ; 

external-preference preference; 

preference preference; 

wide-metrics-only; 

} 
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Isp-lifetime seconds; 
no-authentication-check; 
overload <timeout seconds>; 
reference-bandwidth reference-bandwidth ; 
traffic-engineering { 

disable; 

shortcuts; 



traceoptions { 

file name <replace> <size size> <f\\es number> <no-stamp> 

<(world-readable | no-world-readable)>; 
flag flag <flag-modifier> <disable>; 



interface interface-name { 
disable; 

csnp-interval seconds; 
hello-authentication-key key; 
hello-authentication-type authentication; 
Isp-interval milliseconds; 
mesh-group (value j blocked); 
passive; 

level level-number { 
disable; 

hello-authentication-key key, 

helto-authentication-type authentication; 

hello-interval seconds; 

hold-time seconds; 

metric metric; 

passive; 

priority priority; 

te-metric metric; 

> 

} 

} # End of [edit protocols isis] hierarchy level 



interface interface-name { 
disable; 

hello-interval seconds; 
hold-time seconds; 

} 

keepalive-interval seconds; 
keepative-timeout seconds; 
preference preference; 
traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<{world-readab!e | no-world-readable)>; 
flag flag <flag-modifier> <disable>; 

} 

} # End of [edit protocols Idp] hierarchy level 



LDP 



ldp{ 



MPLS 



mpls { 
disable; 

no-propagate-ttl; 
admin-groups { 



group-name group-value; 



log-updown { 
(systog | no-syslog); 
(trap | no-trap); 

} 
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optimize-aggressive; 
path path-name { 
disable; 

address <strict | loose>; 



statistics { 

fiie filename size size files number <no-stamp>; 
interval seconds; 



traceoptions { 

file name <repiace> <size size> <files number> <no-stamp> 

<(worid-readab[e [ no-wor(d-readabfe)>; 
flag flag <fiag-modif(er> <disable>; 



traffic-engineering (bgp | bgp-igp); 
labe!-switched-path \sp-path-name { 
disable; 
to address; 
from address; 
adaptive; 
admin-group { 

include [ group-names ]; 
exclude [ group-names }; 

} 

bandwidth bps; 

c (a ss-of-servtce c/ass-of-service ; 
fasUeroute { 

bandwidth bps; 

hop-limit number; 

include group-names; 

exclude group-names; 

} 

hop-limit number; 
idp-tunneling; 
metric metric; 
no-cspf; 

no-decrement-ttl; 

optimize-ttmer seconds; 

p refe re n ce preference ; 

priority setup-priority hold-priority; 

(random j least-fill | most-fill); 

(record | no-record); 

retry-! imit number; 

retry-timer seconds; 

standby; 

primary path-name { 
adaptive; 
admin-group { 

include [ group-names ]; 

exclude [ group-names }; 

} 

bandwidth bps; 

class-of-service ciass-of-service ; 

hop-iimit number; 

no-cspf; 

optimize-timer seconds; 

preference preference; 

priority setup-priority hold-priority; 

(record | no-record); 

standby; 
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} 




secondary path-name { 
adaptive; 
admin-group { 

include group-names; 

exclude group-names; 

} 

bandwidth bps', 

ctass-of-service class-of-service; 

hop-limit number, 

no-cspf; 

optimize-timer seconds: 

preference preference; 

priority setup-priority hold-priority; 

(record | no-record); 

standby; 

} 

install { 

destination-prefix/pref/x-Jength <active>; 

} 

} 

interface {interface-name \ alf) { 
disable; 
admin-group { 
group-name; 

} 

label-map in-label { 

{nexthop [address \ interface-name | address/interface-name)) \ (reject | discard); 
{pop | {swap <out-label>); 
class-of-servtce ciass-of-service; 
preference preference; 
type type; 

} 

} 

static-path inet { 
prefix { 

nexthop (address | interface-name J address/interf ace-name); 
push out~labe); 

ciass-of-service class-ofservice ; 
preference preference; 

} 

} 

} # End of [edit protocols mpls] hierarchy level 

MSDP msdp { 

disable; 

export [ policy-names J; 
import [ policy-names ]; 
rib-group group-name; 
traceoptions { 

file name <replace> <size s/2re> <files number> <no-stamp> 

<{world-readable | no-world-readable}>; 
flag flag <flagmodifier> <disable>; 

} 

peer address { 
disable; 

local-address address; 
export [ policy-names j; 
import [ policy-names ]; 
traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 
<(world-readable | no-world-readab(e)>; 
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flag flag <f(ag-modifier> <disable>; 

} 

} 

group group-name { 
disable; 

export [ policy-names ]; 
import [ policy-names ]; 
local-address address; 
traceoptions { 

file name <repiace> <size size> <files number> <no-stamp> 

<{world-readable | no-world-readable)>; 
flag flag <flag-modifier> <disabte>; 

} 

peer address; { 
disable; 

export [ policy-names ]; 
import [ policy-names j; 
local-address address ; 
mode <(mesh-group | standard)>; 
traceoptions { 

file name <replace> <size $ize> <files number> <no-stamp> 

<(world-readable | no-world-readable}>; 
flag flag <flag-modsfier> <disabie>; 

} 

} 

} 

} #End of [edit protocols msdp] hierarchy level 

OSPF ospf { 

disable; 

export [ policy-names ]; 
external-preference preference; 
preference preference; 
reference-bandwidth reference-bandwidth ; 
traffic-engineering { 

no-topology; 

shortcuts; 

} 

traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(worid-readable | no-wortd-readable)>; 
flag flag <fiag-modif\er> <disable>; 

} 

area area-id { 

area-range network/ masklen <restrict>; 
a uthentication-type authentica tion ; 
interface interface-name { 
disable; 

authentication-key key<key-\6 identifier; 
dead-interval seconds; 
heilo-intervaf seconds; 
interface-type type; 
metric metric; 

neighbor address <eligtble>; 
passive; 

poll-interval seconds; 
priority priority; 
retransmit-interval seconds; 
transit-delay seconds; 
transmit-interval seconds; 

) 
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nssa { 

area-range network/ 'maskien <restnct>; 
default-metric metric; 
(summaries | no-summaries); 

} 

stub <default-metric metric> <(summaries | no-summaries)>; 
virtuai-link neighbor-id router-id transit-area area-id { 
disable; 

authentication-key key < key-id identifier^; 
dead-intervai seconds; 
hello-interval seconds; 
retransm it-interval seconds; 
transit-delay seconds; 

} 

} 

} # End of [edit protocols ospf] hierarchy level 

PIM pirn { 

disable; 
dense-groups { 
addresses; 

} 

ri b-grou p group-name ; 
traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(worid-readable | no-world-readable)>; 
flag flag <fiag-modifier> <disabie>; 

} 

interface interface-name { 
disable; 

mode (dense | sparse | sparse-dense); 
priority number; 
version version; 

) 

rp{ 
local { 
disable; 

address address; 
group-ranges { 
destination-mask ; 

} 

hold-time seconds; 
priority number; 

} 

auto-rp (announce | discovery | mapping); 
bootstrap-priority number; 
static { 

address address { 
version version; 
group-ranges { 
destination-mask; 

} 

} 

} 

} 

} # End of [edit protocols pirn] hierarchy level 

RIP rip { 

traceoptions { 

file name <replace> <size size> <fifes number> <no-stamp> 
<(wor!d-readable | no-world-readable)>; 
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flag flag <ffag-modifier> <disable>; 

} 

authentication-key password; 
authentication-type type; 
(check-zero | no-check-zero); 
import [policy]; 
message-size number; 
metric-in metric ; 
receive receive-options; 
send send-options; 
group group-name { 
export [policy]; 
metric-out metric; 
preference preference ; 
neighbor neighbor-name { 

authentication-key password; 

authentication-type type; 

{check-zero | no-check-zero); 

import [policy]; 

message-size number; 

metric-in metric; 

receive receive-options; 

send send-options; 

} 

} 

} # End of [edit protocols rip] hierarchy level 

Router Discovery router-discovery { 
disable; 
traceoptions { 

file name <replace> <size size> <fdes number> <no-stamp> 

<{world-readable | no-world-readable)>; 
flag flag <flag-modifier> <disable>; 

} 

interface interface-name { 

min-advertisement-interval seconds; 
max-advertisement-interval seconds; 
lifetime seconds; 

} 

address address { 
(advertise | ignore); 
(broadcast | multicast); 
(priority priority | ineligible); 

} 

} # End of [edit protocols router-discovery] hierarchy level 

RSVP rsvp { 

disable; 

keep-multiplier number; 
refresh-time seconds; 
traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(world-readable | no-worid-readable)>; 
flag flag <flag-modifier> <disable>; 

} 

interface interface-name { 
disable; 

(aggregate [ no-aggregate); 
authentication-key key; 
bandwidth bps; 
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SDP/SAP 



VRRP 



} 



hello-interval seconds; 
subscription percentage; 

> 

} # End of [edit protocols rsvp] hierarchy level 

sap{ 
disable; 

listen <address> <port port>; 
} # End of [edit protocols sap] hierarchy level 



traceoptions { 
flag flag; 

} # End of [edit protocols vrrp] hierarchy level 
# End of [edit protocols] hierarchy level 
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[edit routing-instances] Hierarchy Level 



[edit] 

routing-instances routing-instance-name { 
interface interface-name; 
protocols { 
ospf { 

ospf-configuration; 

} 

} 

routing-options { 
aggregate { 
defaults { 
{active | passive); 

as-path <as-path> <origin {egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metric4) value; 
(preference | preference2 | coior | color2) preference; 
(tag | tag2) string; 

} 

autonomous-system autonomous-system <loops number>; 

confederation confederation-autonomous-system members autonomous-system; 

fate-sharing { 

group group-name; 

cost value; 

from address [to address] ; 

} 

forward ing-table { 

export [ policy-names ]; 

} 

generate { 
defaults { 
(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ communtty-tds ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metnc2 | metnc3 | metric4) value; 
(preference | preference2 | color | coior2) preference; 
(tag | tag2) string; 

} 
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interface-routes { 
rib-group routing-table-name; 



martians { 

destination-prefix match-type <al!ow>; 

} 



multicast { 
scope scope-name { 

interface interface-name; 
prefix destination-prefix; 

} 



rib routing-table { 
aggregate { 
defaults { 

(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community {[ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metric4) value; 
(preference | preference2 | color | coior2) preference; 
(tag | tag2) string; 

} 

route destination-prefix { 
policy policy-name; 
(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metric4) value; 
(preference | preference2 | color | color2) preference; 
(tag | tag2) string; 

} 

generate { 
defaults { 

(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(fuli | brief); 

(metric | metric2 | metric3 | metnc4) value; 
(preference | preference2 | color | coior2) preference; 
(tag | tag2) string; 

} 

martians { 

destination-prefix match-type <allow>; 



} 

options { 

syslog (level level | upto level); 
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static { 
defaufts { 



(active | passive); 

as-path <as-path> <origin {egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator a$-number in-address>; 
community ([ community-Ids } | no-advertise | no-export | no-export-subconfed | none); 
(install | no-install); 

(metric | metric2 ) metric3 | metric4) value; 
(preference | preference2 | color | coior2) preference; 
(readvertise | no-readvertise); 
(no-retain | retain); 
(tag | tag2) string; 

} 

route destination-prefix { 
policy policy-name]; 
(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> otomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metnc4) value; 
(preference | preference2 | color | color2) preference; 
(tag | tag2) string; 

) 



rtb-groups { 
group-name { 

import-rib [ group-name ]; 
export-rib group-name; 

} 

} 

route-record; 
router-id address ; 
static { 
defaults { 

(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(install | no-install); 

(metric [ metric2 | metnc3 | metric4) value; 
(preference | preference2 | color | coior2) preference; 
(readvertise | no-readvertise); 
(no-retain | retain); 
(tag | tag2) string; 



traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 
<(world-readable | no-worid-readable)>; 
flag flag <fiag-modifier> <disable>; 
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[edit routing*options] Hierarchy Level 



routing-options { 
aggregate { 
defaults { 

(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 [ metric4) value; 
(preference | preference2 | color | co!or2) preference; 
(tag | tag2) string; 



route destination-prefix { 
policy pof icy-name; 
(active | passive); 

as-path <as-path> <origin (egp ( igp | incomplete | none)> <a torn ic-aggregate> 

<aggregator as-number in-address>; 
community ([ community-ids ) | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metric4) valve; 
(preference | preference2 | color j color2) preference; 
(tag | tag2) string; 

} 

} 

autonomous-system autonomous-system <loops number>; 

confederation confederation-autonomous-system members autonomous-system; 

forwarding-table { 

export [ policy-names ]; 

) 

generate { 
defaults { 
(active | passive); 

as-path <as-path> <ongin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | methc3 | metric4} value; 
{preference | preference2 | color | color2) preference; 
(tag | tag2) string; 



route destination-prefix { 
policy policy-name; 
(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metnc3 | metric4) value; 
(preference | preference2 | color | coior2) preference; 
(tag | tag2) string; 

} 

} 

interface-routes { 
rib-group routing-table-name; 

} 

martians { 

destination-prefix match-type <allow>; 

} 



} 



} 




multicast { 

scope scope-name { 
interface interface-name; 
prefix destination-prefix] 

} 

} 

options { 

syslog (level level | upto level)', 

) 

rib routing-table { 
static { 
defaults { 

(active | passive) ; 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] ( no-advertise | no-export | no-export-subconfed | none); 
(install | no-install); 

(metric | metric2 | metric3 | metric4) value; 
(preference | preference2 | color | cofor2) preference; 
(readvertise ( no-readvertise); 
(no-retain j retain); 
(tag | tag2) string; 



route destination-prefix { 
next-hop', 
(active | passive); 

as-path <as-path> <ongin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(install | no-instali); 

(metric | metric2 | metric3 | metric4) value; 
(preference | preference2 | color | color2) preference; 
(readvertise | no-readvertise); , 
(no-retain ( retain); 
(tag | tag2) string; 



defaults ( 

(active | passive); 

as-path <as-path> <ongin (egp | igp | incomplete | none)> <atomic-aggregate> 

<aggregator as-number in-address>; 
community ([ community-ids } | no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metric4) value ; 
(preference | preference2 | color | color2) preference; 
(tag | tag2) string; 



route destination-prefix { 
policy poiicy-name; 
(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] j no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

(metric | metric2 | metric3 | metric4) value; 
(preference | preference2 | color | color2) preference; 
(tag | tag2) string; 



aggregate { 



} 



FIGURE 




generate { 
defaults { 

(active | passive); 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

<aggregator as-number in-address>; 
community ([ communtty-ids ] | no-advertise | no-export | no-export-subconfed | none); 
(fuli | brief); 

(metric | metric2 | metric3 ] metric4) value; 
(preference | preference2 | color | color2) preference; 
(tag ] tag2) string; 

} 

route destination-prefix { 
policy policy-name; 
{active | passive); 

as-path <as-path> <origin (egp j igp | incomplete j none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids ] \ no-advertise | no-export | no-export-subconfed | none); 
(full | brief); 

{metric | metric2 | metric3 | metric4) value; 
(preference \ preference2 | color | color2) preference; 
(tag | tag2) string; 

} 

} 

martians { 

destination-prefix match-type <allow>; 

} 

} 

rib-groups { 
group-name { 

import-rib [ group-name ]; 
export-nb group-name; 

} 

} 

router~id address ; 
static { 
defaults { 

(active | passive) ; 

as-path <as-path> <origin (egp | igp | incomplete | none)> <atomic-aggregate> 

<aggregator as-number in-address>\ 
community ([ community-ids ] | no-advertise ] no-export | no-export-subconfed | none); 
(install | no-instalf}; 

{metric | metric2 | metric3 | metric4) value; 
(preference | preference2 ) color ) color2) preference; 
(readvertise | no-readvertise); 
(no-retain | retain); 
(tag | tag2) string; 

} 

route destination-prefix { 
next-hop; 
(active | passive); 

as-path <as-path> <ongin (egp | igp | incomplete | none)> <atomic-aggregate> 

oggregator as-number in-address>; 
community ([ community-ids J | no-advertise | no-export j no-export-subconfed | none); 
(install 1 no-install); 

(metric ] metric2 | metric3 | metric4) value; 
(preference | preference2 | color | color2) preference; 

(readvertise | no-readvertise); |nr - _ 

(nc-retain | retain); P I O U K t I I C 

(tag | tag2) string; 

} 

) 

traceoptions { 

file name <replace> <size size> <files number> <no-stamp> 

<(world-readabte | no-world-readable}>; 
flag flag <ffag-modifier> <disable>; 

} 

} # End of [edit routing-options] hierarchy level 



[edit snmp] Hierarchy Level 



snmp { 

description description-, 
location location', 
contact contact; 
interface [ interface-names ]; 
community community-name { 
authorization authorization; 
clients { 

default restrict; 
address < re stri ct> ; 

} 

} 

trap-group group-name { 
categories category; 
targets { 
address; 

} 

version version; 

} 

traceoptions { 

file <files number> <size size>; 
flag flag <disab!e>; 

} 

} # End of [edit snmp] hierarchy level 
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[edit system] Hierarchy Level 



system { 

authentication-order [ authentication-methods ]; 
backup-router address < destination destination-address>; 
com press-configuration-f iles; 
default-address-se lection; 
dhcp-relay (server address \ disable); 

diag-port-authentication (encrypted-password "password" | plain-text-password); 
domain-name domain-name; 
domain-search [domain-list]; 
host-name host-name; 
location { 

altitude feet; 

country-code code; 

hcoord horizontal-coordinate; 

lata service-area; 

latitude degrees; 

longitude degrees; 

npa-nxx number; 

postal-code postal-code; 
'• vcoord vertical-coordinate; 
} 

login { 

message text; 
class class-name { 

allow-commands "regular-expression" ; 
deny-commands "regular-expression"; 
idle-timeout minutes; 
permissions [ permissions ]; 

} 

user user-name { 

full-name complete-name; 
uid uid-value; 
class class-name; 
authentication { 

(encrypted-password "password" | plain-text-password); 

ssh-rsa "public-key"; 

} 

} 

} 

name-server { 
address; 
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ntp{ 

authentication-key key-number type type value password; 
boot-server address; 

broadcast <address> <key key-number> <version value> <ttl value>; 

broadcast-client; 

multicast-client <address>; 

peer address <key key-numbeo <version value> <prefer>; 
server address <key key-number> <version value> <prefer>; 
trusted-key [ key-numbers ]; 

} 

ports { 
auxiliary { 
insecure; 
speed baud-rate; 
type terminal-type; 

} 

console { 
insecure; 
speed baud-rate; 
type terminal-type; 



} 

} 

processes { 
inet-process (enable | disable); 
interface-control (enable | disable); 
mib-process (enable | disable); 
ntp (enable | disable); 

routing (enable | disable); 
snmp (enable | disable); 

watchdog (enable | disable) <timeout seconds>; 

} 

radius-server server-address { 
port number; 
retry number; 
secret password; 
timeout seconds; 

> 

root-authentication { 

(encrypted-password u password" | plain-text-password); 
ssh-rsa "public-key"; 

} 

services { 

finger <connection-limit limit> <rate-limit limi>\ 
ssh <connection-limit iimit> <rate-limit limit>; 
telnet <connection-limit iimit> <rate-limit limit>; 

} 

static-host-mapping { 
host-name { 
inet [ address ]; 
sysid system-identifier; 
alias [ alias ]; 

} 

} 

syslog { 
file filename { 
facility level; 
archive { 
files number; 
size size; 

(worid-readabte | no-world-readable); 

} 

} 

host hostname { 
facility level; 
facility-override facility, 
log-prefix string; 

> 

user {username | *) { 
facility level; 

} 

console { 
facility level; 

} 

archive { 

files number; 
size size; 

(world-readable 1 no-world-readable); 

} 

} 

tacplus-server server-address { 
secret password; 
single-connection; 
timeout seconds; 

} 

time-zone time-zone; 
}} # End of [edit system] hierarchy level 
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